Skip to main content

Rail signalling system ‘could be liable to hacking’

A new rail signalling system to be installed across the UK could be liable to hacking, a government adviser has warned. Professor David Stupples told the BBC that the European Rail Traffic Management system (ERTMS) could be exposed to malicious software, or malware, and used to cause an accident perhaps telling the system the train is slowing when down when it is speeding up. "However, he said governments aren't complacent."Certain ministers know this is absolutely possible and they are worried about
April 27, 2015 Read time: 2 mins
A new rail signalling system to be installed across the UK could be liable to hacking, a government adviser has warned.

Professor David Stupples told the BBC that the European Rail Traffic Management system (ERTMS) could be exposed to malicious software, or malware, and used to cause an accident perhaps telling the system the train is slowing when down when it is speeding up.

"However, he said governments aren't complacent."Certain ministers know this is absolutely possible and they are worried about it. Safeguards are going in, in secret, but it's always possible to get around them," he said.

ERTMS uses a computer in the driver's cab to control the speed and movement of the train, whilst taking account of other trains on the railway. Although still operating under the umbrella term of ERTMS, 5021 Network Rail says it is creating its own traffic management system to optimise performance.

Network Rail said it acknowledges the threat. A spokesman said "We know that the risk [of a cyber-attack] will increase as we continue to roll out digital technology across the network. We work closely with government, the security services, our partners and suppliers in the rail industry and external cyber security specialists to understand the threat to our systems and make sure we have the right controls in place."

For more information on companies in this article

Related Content

  • Social media a one-stop shop for travel information
    January 20, 2012
    Exponentially widening mobile phone ownership is opening up the field to new ways of obtaining and disseminating better travel information from and to public transport users, via for example social media and tracking riders' phones. Over 50 US transit agencies, including major actors such as TriMet, in the metropolitan area of Portland, Oregon, Dallas Area Rapid Transit in Texas, and San Francisco's Bay Area Rapid Transit District (BART), as well as smaller operators, now have Facebook and/or Twitter accoun
  • Go-Ahead hit by cyberattack
    September 7, 2022
    Bus and rail group managing 'cybersecurity incident' after detecting 'unauthorised activity'
  • Connected-car security market expected to reach US$759 million in seven years
    September 30, 2016
    With nearly 112 million vehicles now connected around the world, the global market for automotive cybersecurity is expected to grow exponentially – to US$759 million in 2023, according to a new report, Automotive Cyber-security and Connected Car, from IHS Automotive, part of business information provider IHS Markit. Connected cars are defined as those that have a connection to the internet, through telematics, an onboard modem or a paired device in the vehicle, such as a mobile phone or other device. One
  • IBTTA summit hits right notes in Salzburg
    December 5, 2018
    In the birthplace of Mozart, Colin Sowman found that delegates at the IBTTA’s inaugural World Tolling Summit were playing a variety of interesting tunes The first World Tolling Summit took place in Salzburg, Austria this autumn. Created and organised by the International Bridge Tolling and Turnpike Association (IBTTA), the event was supported by its European counterpart Asecap and hosted by Austria’s tolling authority, Asfinag. The transfer of views, experience and practice both ways across the Atl